CVE-2025-4721: itsourcecode Placement Management System drive.php sql injection
A vulnerability was found in itsourcecode Placement Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /drive.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4721?
CVE-2025-4721 has been rated as critical due to its potential for SQL injection.
What vulnerability is associated with the file /drive.php in CVE-2025-4721?
CVE-2025-4721 involves a SQL injection vulnerability caused by improper handling of the ID argument in /drive.php.
Can CVE-2025-4721 be exploited remotely?
Yes, the CVE-2025-4721 vulnerability can be exploited remotely by attackers.
How do I fix CVE-2025-4721?
To fix CVE-2025-4721, it is recommended to sanitize and validate all user inputs to securely handle the ID argument.
Which software is affected by CVE-2025-4721?
CVE-2025-4721 affects the itsourcecode Placement Management System version 1.0.